Skip to content

Comments

Add 6 missing vulnerability disclosures#643

Merged
dguido merged 1 commit intomasterfrom
fix/issue-298
Feb 11, 2026
Merged

Add 6 missing vulnerability disclosures#643
dguido merged 1 commit intomasterfrom
fix/issue-298

Conversation

@dguido
Copy link
Member

@dguido dguido commented Feb 11, 2026

Summary

Adds 6 missing vulnerability disclosures to the Disclosures table, as listed in #298.

Disclosure Product Discoverer Year
L2 finality bugs in Juno and Pathfinder Juno, Pathfinder Benjamin Samuels 2023
ERC721 improper token transfer in cairo-contracts OpenZeppelin cairo-contracts Simone Monica 2022
Breaking Aave Upgradeability Aave v1/v2 Josselin Feist 2020
Accidentally stepping on a DeFi lego yVault (yEarn) Sam Sun 2020
Tezos message passing architecture vulns Tezos Simone Monica 2020
Bug Hunting with Crytic E&Y Nightfall, DeFiStrategies, Set Protocol, Computable, Aragon, Balancer Josselin Feist 2020

All entries include blog post or disclosure links where available. Inserted in chronological order (newest first), matching existing table format.

Closes #298

Test plan

  • All 6 entries added with correct Name, Product, Discoverer, Year, ID, Blog columns
  • Chronological sort order maintained (newest first)
  • No duplicate entries
  • Blog/disclosure links verified

🤖 Generated with Claude Code

- L2 finality bugs in Juno and Pathfinder (2023)
- ERC721 improper token transfer in OpenZeppelin cairo-contracts (2022)
- Breaking Aave Upgradeability (2020)
- Accidentally stepping on a DeFi lego / yVault (2020)
- Tezos message passing architecture vulnerabilities (2020)
- Bug Hunting with Crytic (2020)

Closes #298

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
@dguido dguido mentioned this pull request Feb 11, 2026
@dguido dguido merged commit 5245d85 into master Feb 11, 2026
3 checks passed
@dguido dguido deleted the fix/issue-298 branch February 11, 2026 06:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

Add missing vuln disclo

1 participant